CVE-2026-65834 | projectcapsule Capsule up to 0.13.7 Configuration Admission Webhook forbidden_list.go regexp.MustCompile ForbiddenLabels.Regex/ForbiddenAnnotations.Regex input validation

SecurityVulns

A vulnerability was found in projectcapsule Capsule up to 0.13.7. It has been rated as problematic. Affected by this vulnerability is the function regexp.MustCompile of the file pkg/api/forbidden_list.go of the component Configuration Admission Webhook. The manipulation of the argument ForbiddenLabels.Regex/ForbiddenAnnotations.Regex leads to improper input validation.

This vulnerability is listed as CVE-2026-65834. The attack may be initiated remotely. There is no available exploit.

Upgrading the affected component is advised.VulDB Recent EntriesRead More